Banatrix successor – swapping acct numbers with a Firefox add-on
Tags
country: | Poland |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Data Indirect Malware - T1587.001 Malware - T1588.001 Scheduled Task - T1053.005 Server - T1583.004 Server - T1584.004 Software - T1592.002 Tool - T1588.002 Scheduled Task - T1053 |
Common Information
Type | Value |
---|---|
UUID | 0bfc6ae0-dbf9-4a4a-844b-2d7c523b0ba8 |
Fingerprint | fd7c90d101e72c4d |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Jan. 21, 2016, midnight |
Added to db | Nov. 6, 2023, 8:32 p.m. |
Last updated | Nov. 12, 2024, 11:37 p.m. |
Headline | Social media |
Title | Banatrix successor – swapping acct numbers with a Firefox add-on |
Detected Hints/Tags/Attributes | 36/3/13 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 81 | ✔ | CERT Polska | https://cert.pl/en/rss.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | blockchainin.in |
|
Details | Domain | 30 | addons.mozilla.org |
|
Details | File | 13 | wget.exe |
|
Details | File | 1 | dat.bmp |
|
Details | sha256 | 1 | e60777fbf6a65021886b41454ca3a37ac685ab2ef04d5dbed1c1b9d99287e37e |
|
Details | sha256 | 1 | ef866e56bb920e2cf5dd63c15e3cd654905a2e0176c657508e0f087f7e6686c1 |
|
Details | sha256 | 1 | 99be6b16989a190bc253fb442ab3d7363afeab5b71a6d3f021acfab558959cef |
|
Details | sha256 | 1 | 507c0c05268a142f595113a424b57f63e1bc704362321c2009c42c8c424a6435 |
|
Details | sha256 | 1 | eda320cf33c8100c70c06ae6cd35f689c8159991aeef49d16cac520a3c8db008 |
|
Details | sha256 | 1 | 1e8e649279c84fc918d8ac3bc776114a545f7b1689fe3e90b7f77740a80fe345 |
|
Details | sha256 | 1 | 3d59b246b4c7da094b43da4e2d2e4bf8c3d0723811f954cce54aa521bc5d019c |
|
Details | IPv4 | 198 | 1.1.1.1 |
|
Details | Url | 1 | http://blockchainin.in/dat.bmp?data=ypxjramoswkhkoamfqqm |